Removed: msnmls.exe (trojan Boberog)
Malware: out.exe Removed: C:\WINDOWS\msnmls.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: UserInit Author: Unknown Related File: C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\msnmls.exe Type: UserInit Value Item Name: msnmls.exe Author: Related File: C:\WINDOWS\MSNMLS.EXE Type: Detected using Heuristic Algorithm Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- Classification: Antivirus Version Last Update Result F-Secure 9.0.15370.0 2010.04.21 – Kaspersky 7.0.0.125 2010.04.21 Trojan.Win32.VB.aeec Microsoft 1.5703 [...]
Removed: C:\WINDOWS\winmbu.exe (Virus Boberog blocks firewall)
Malware: ne.exe —————————————————————————————————————————- Removed: C:\WINDOWS\winmbu.exe – blocks firewall —————————————————————————————————————————- Detected by UnHackMe: Item Name: UserInit Author: Unknown Related File: C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\winmbu.exe Type: UserInit Value Item Name: winmbu.exe Author: Unknown Related File: C:\WINDOWS\WINMBU.EXE Type: Detected using Heuristic Algorithm Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- Classification: Antivirus Version Last Update Result F-Secure 9.0.15370.0 2010.04.08 Generic.YSpammer.D19A4F35 Kaspersky [...]
Removed: crypt_abuzamnet.info_original.exe
Malware: c:\sand-box\crypt_abuzamnet.info_original.exe Removed: c:\sand-box\crypt_abuzamnet.info_original.exe —————————————————————————————————————————- Classification: Antivirus Version Last Update Result F-Secure 9.0.15370.0 2010.04.09 – Kaspersky 7.0.0.125 2010.04.09 Trojan-Downloader.Win32.FraudLoad.gpn Microsoft 1.5605 2010.04.09 – NOD32 5012 2010.04.09 Win32/Agent.ODM —————————————————————————————————————————- Additional information File size: 32768 bytes MD5 : 5e6a2c07e3453c6489957019023b9589 SHA1 : ac14b3e439d1ede0d31764165a10cc27583306c6 SHA256: feb1679b7b77186b5f73fb55aa76815976dc296182cd0a44ee1efda1532c2696 —————————————————————————————————————————- Installation When the program is executed, it creates the following registry subkeys [...]
Removed: usrinit.exe
Malware: 6236c627af9e3753d99cf72e84b2768c.exe Removed: C:\WINDOWS\system32\usrinit.exe —————————————————————————————————————————- Classification: Antivirus Version Last Update Result F-Secure 9.0.15370.0 2010.04.03 – Kaspersky 7.0.0.125 2010.04.03 Heur.Trojan.Generic McAfee 5937 2010.03.31 – Microsoft 1.5605 2010.04.03 – NOD32 4997 2010.04.03 – —————————————————————————————————————————- Additional information File size: 84992 bytes MD5 : aeabb48b8b39c8f51eb5900f18ce9e91 SHA1 : 28a5422a2286d1f8288c292cc6a6ff5f9d43d7b1 SHA256: b4df3c2e22f5235af79d4d9a3aa8cac2352b65d0e2a46d2ca4349a93b5577979 —————————————————————————————————————————- Installation When the program is executed, it creates the following registry [...]



